CVE-2015-8366: Out-of-bounds Read
Published Jan 14, 2020
·Updated
Array index error in smaldecodesegment function in LibRaw before 0.17.1 allows context-dependent attackers to cause memory errors and possibly execute arbitrary code via vectors related to indexes.
Affected Software
1 affected component
Libraw Libraw<0.17.1
Event History
Jan 14, 2020
CVE Published
via MITRE·03:19 PM
Data Sourced
via MITRE·03:19 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID is CVE-2015-8366.
2
What is the severity of CVE-2015-8366?
The severity of CVE-2015-8366 is critical with a severity value of 9.8.
3
What software is affected by CVE-2015-8366?
The LibRaw software before version 0.17.1 is affected by CVE-2015-8366.
4
How can context-dependent attackers exploit CVE-2015-8366?
Context-dependent attackers can exploit CVE-2015-8366 to cause memory errors and possibly execute arbitrary code via vectors related to indexes.
5
Where can I find more information about CVE-2015-8366?
More information about CVE-2015-8366 can be found at the following references: [1] [2] [3].